CVE Vulnerability Database

Search and browse 395,770 CVE records with CVSS scores, EPSS exploit predictions, and CISA KEV status.

CVE IDSeverityCVSSDescription
CVE-2026-53475HIGH7.4A flaw was found in assisted-migration-agent. The application hardcodes insecure Transport Layer Security (TLS) connecti...
CVE-2026-53474MEDIUM6.5A flaw was found in migration-planner. A remote authenticated attacker could exploit this vulnerability by uploading a s...
CVE-2026-53473MEDIUM5.4A flaw was found in migration-planner-ui-app. An attacker can register a malicious discovery agent with a specially craf...
CVE-2026-53471HIGH7.7A flaw was found in migration-planner. The agent-API middleware processes JSON Web Tokens (JWTs) for authentication, but...
CVE-2026-53470HIGH8.1A flaw was found in migration-planner. An authenticated attacker could exploit an improper access control vulnerability ...
CVE-2026-53469HIGH8.1A flaw was found in migration-planner. An authenticated user can exploit this vulnerability by sending a DELETE request ...
CVE-2026-45564HIGH8.8Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, PO...
CVE-2026-45563MEDIUM4.3Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, GE...
CVE-2026-45561MEDIUM6.5Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, th...
CVE-2026-45560MEDIUM6.1Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, wr...
CVE-2026-45559MEDIUM4.9Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, ge...
CVE-2026-45558CRITICAL9.9Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, th...
CVE-2026-45556CRITICAL9.9Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, PO...
CVE-2026-45552CRITICAL9.9Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, th...
CVE-2026-45550CRITICAL9.1Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, PU...
CVE-2026-45549HIGH8.5Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, ag...
CVE-2026-11884MEDIUM6.5A heap buffer overflow flaw was found in 389 Directory Server. When serializing objectclass definitions, the oc_superior...
CVE-2025-10238HIGH8.4During an internal security assessment, a potential out-of-bounds write vulnerability was discovered in the BIOS of some...
CVE-2025-10237HIGH8.4During an internal security assessment, a potential vulnerability was discovered in some ThinkPad embedded controller fi...
CVE-2026-9758HIGH7.3Improper comparison with the certificates trusted list in S2OPC allows an attacker well-formed untrusted certificate to ...
CVE-2026-53442MEDIUM5.3Jenkins 2.567 and earlier, LTS 2.555.2 and earlier does not encrypt secrets from POST config.xml submissions before stor...
CVE-2026-53441MEDIUM5.4Jenkins 2.483 through 2.567 (both inclusive), LTS 2.492.1 through 2.555.2 (both inclusive) does not escape the user-prov...
CVE-2026-53440MEDIUM4.3Jenkins 2.567 and earlier, LTS 2.555.2 and earlier does not ensure that the "from" parameter in the "Delegate to servlet...
CVE-2026-53439MEDIUM4.3Missing permission checks in Jenkins 2.567 and earlier, LTS 2.555.2 and earlier allow attackers with Overall/Read permis...
CVE-2026-53438MEDIUM4.3A missing permission check in Jenkins 2.567 and earlier, LTS 2.555.2 and earlier allows attackers with Item/Cancel permi...